URLhaus Database

You are currently viewing the URLhaus database entry for http://windows401.info/app/files/dc/id27315003/compan.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1866299
URL: http://windows401.info/app/files/dc/id27315003/compan.exe
URL Status:Offline
Host: windows401.info
Date added:2021-12-08 17:18:03 UTC
Last online:2022-01-22 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-01-20 11:18:08 UTC to alex[dot]inetcom{at}gmail[dot]com)
Takedown time:1 month, 15 days, 6 hours, 47 minutes Bad (down since 2022-01-23 00:36:57 UTC)
Tags:32 exe RaccoonStealer link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-10n/aexe 580a23cfee9a6c7188ea8e88bffe675e3228221d5aa27e76d748c8a8f2fc4b62n/a RedLineStealer
2022-01-10n/aexe 6fbe35a424dcf4949c9402c21d0f6102c1d538203e38408f570e8f161abb4517n/a 
2022-01-10n/aexe 922a3412b7f44d7fe508a7cc97ac71fde977dd07025fa84a9d849383f44d2353n/aRaccoonStealer
2022-01-10n/aexe 9dd85db25c80607afc1a3efec5b5d03fe882a59beec4347f0a75b6b256d7c5dbn/aRaccoonStealer
2022-01-10n/aexe 5ea6f1b481a8c4f7cfe46607ef08ca1b72113b3225002923ad9839f6fd0c67dcn/a RedLineStealer
2022-01-10n/aexe d188f505ff2702722bf5ccd43eb3451025e8312fc38cea0d6d47131d0c870ec8n/a
2022-01-09n/aexe 81ace5cefeb9363abea07fba3f61042d495037ceb815633279e7aa2b9556824en/aRedLineStealer
2022-01-07n/aexe b1e2335eb58049ec7067133d10d49e92807747ad238778d83b3796770e9e284dn/aRedLineStealer
2022-01-07n/aexe 82eef06f31bd95da4b29d29e46203590b9a8f65b7e0d4093bf7588f71094bd38n/aRaccoonStealer
2021-12-27n/aexe de90494cf877b8c279196f82d6ddba86a8b6139843a26816c605c38d8d72fa3an/aRedLineStealer
2021-12-18n/aexe d90afdd967ba53048d4d0c3d2668f1a11647887cf3fcdcc01ecdc9e829c48fd7n/a 
2021-12-11n/aexe 24ac810ea21f8232c6a399de2ec29171ba065ab21bf019387802d06a80597a0fn/a RedLineStealer
2021-12-10n/aexe fa1a7526d18f385fcd5733d7997da5b15dae20d0fb74b1331e021b23ce50c28en/a RedLineStealer
2021-12-08n/aexe a8e0baca3d4bf1fb178b979886b8e992b21b37d42a346e12811898cc6cf3cf1aVirustotal results 32.79%RedLineStealer